FRIDAY 3 NOVEMBER 2023
Unlock workshops
IMPROVING ONE'S SECURITY BY LEVERAGING THE CROWD
English
Intermediate
11H45 – 13H15
Manuel SABBAN
As of today information security is known to be a main concern for many decision-makers. We will demonstrate how CrowdSec Security Engine could help security teams. CrowdSec Security Engine defends against intrusions by analyzing logs to identify and block offending IPs. Flagged IPs are then sent to the community blocklist to protect the Crowd.
Crowdsec is an open-source tool suite built upon the Security Engine and specialized remediation tools we call bouncer. We will cover the following topics:
- install and configure CrowdSec ;
- crowdsec can perform on cold logs ;
- notifications on specific alerting ;
- demonstrate remediation ;
- analyze metrics with the provided saas tool.
discover your attack surface with onyphe
French
Intermediate
9H30 – 11H30
Patrice AUFFRET
In this workshop, we propose you to discover a repeatable methodology to identify your attack surface starting from a simple domain name. We will see that it is possible to pivot to other sources of information in order to unravel the links between these sources to create an inventory of your attack surface that is as complete as possible.
Next, we'll be able to analyze your attack surface to identify weaknesses in internet-exposed assets, and we'll also look at how to create visualizations and dashboards with Kibana to keep an up-to-date view of your internet exposure.
À propos de l'intervenant :
- More than 20 years of experience in cybersecurity, in both offensive and defensive fields.
- Founder, CEO and CTO of ONYPHE, a company specialising in attack surface management.
NATURAL LANGUAGE PROCESSING (NLP) FOR THREAT INTELLIGENCE
English
Beginner
9H30 – 11H30
Pauline BOURMEAU
Natural language processing is a subfield of AI. It is at the core of large language models. In this workshop you learn how to break AI into tools and build your first NLP program. You learn to use natural language processing to extract knowledge and uncover patterns in text data. This workshop provides you with practical knowledge and skills that you can apply in your daily practice as a security professional. It is designed for beginners, you will be introduced to the foundations of NLP and gain practical experience in text pre-processing, representation, and classification.
Goals:
- Learn how to leverage natural language processing for Threat Intelligence and investigation in cybersecurity.
- Acquire practical skills to allow you to build your own pipelines.
- Guide you to an intuitive path for learning NLP and integrate it progressively to your daily tasks.
Program:
Building a sentiment analysis pipeline using pre-trained models and industry-standard libraries.
- Learn the essential steps of text pre-processing by practicing on a real dataset.
- Explore different methods of representing text data.
- Build a simple text classifier using popular techniques.
- Learn to measure accuracy of your model.
- Discussions and resources to go further.
To conclude:
We quickly discuss diverse ranges of applications of NLP, including Open-Source Intelligence (OSINT), Security research and Incident Response.
And finally, we highlight the significance of working with structured and unstructured data.
Requirements: Knowledge in Python, no prior experience in AI is required.
_______________
About the speaker: Cookie has spent a long-time fixing languages and bikes with very little money and great ingenuity, squatting university benches and corrupting teachers for beer. Working for the past four years as a Threat Analyst, she is also a trained linguist and former teacher who brings a unique perspective to her work by exploring and exploiting threats through criminology, social anthropology, philosophy, and psychology. She actively participates in the open-source community and promotes defensive security practices by training industry practitioners.
CREATE YOUR CUSTOM COMMAND & CONTROL
English
Advanced
9H30 – 13H00
Guillaume PRIGENT and Adrien BARCHAPT-PERROT
Command & Control is a cornerstone of any attacker's infrastructure, whether affiliated state actors (apts), cybercriminals or legitimate Red Team operators.
“Custom your own C&C” is a 4 hours workshop for those interested in getting a quick start into the world of Command & Control design & architecture and who aim to develop their own implant in a famous open source framework.
In this bring-your-own-laptop workshop, participants will get to learn the architecture & the design of a well known open source framework, as an example and get a full hands-on introduction to designing a simple custom implant, working with 2 already prepared virtual machines and concluding with writing their own integrated x64 implant (C++/Python wrapper).
________
About the speakers
Guillaume Prigent (@g0ul4g)
Guillaume is a digital freethinker and an expert in cyber security. Co-founder of DIATEAM, Guillaume started out as an engineer in information systems security, and has been working in the digital security for 25 years now. He has developed many "proofs of concept" and some tools like netglub, ipmorph, hynesim and also gives talks and classes in many engineering schools (ENIB, ENSIETA, ESM Saint-Cyr, ...). Guillaume is the author of several papers on security, and is a frequent speaker and/or attendee at security and testing conferences such as SSTIC, HITB, HACK.LU, FRHACK, ...
Adrien Barchapt-Perrot
Adrien is the RedTeam leader at DIATEAM. Working in the field of offensive cybersecurity for 10 years, he is particularly interested and involved in the development of customized implants and the bypassing of defense systems.
HOW THE MONERO CRYPTOCURRENCY PROTECTS PRIVACY
French
Beginner
14H30 – 18H00
Mathias HERBERTS
Monero is the leading cryptocurrency, standing out for its commitment to preserving privacy. During this workshop, Mathias Herberts will detail its features, the practical aspects of its implementation and daily use, while addressing its future prospects.
This workshop includes a practical part to familiarize participants with the use of Monero. A mobile phone running Android or iOS or a computer running Linux/MacOS/Windows will be required to receive some Monero and participate in the practical aspects.
________
About the speaker: protecting his privacy since the 20th century.
The NIS V2 directive WITHOUT PÉRIDURALE
French
Beginner
14H30 – 16H30
Marc-Antoine LEDIEU et Jean-Philippe GAULIER
The NISv2 Directive is a major development in the European cybersecurity landscape. It aims to strengthen the security of networks and information systems across the European Union, widening the scope compared to the original NIS Directive, including more entities and strengthening security requirements.
We thus go from 300 organisations to more than 10,000 affected. Together we will therefore discuss how to draw up a roadmap calmly by clarifying the most striking buzzwords of the text: state of the art, hygiene, risk analysis, charters, security assurance plan, logging.
In joy and good humor, armed with a few well-prepared floodgates, we will spend together the most delectable moments around an unmissable text!
________
About the speakers
Marc-Antoine Ledieu
After five years as a litigator in business law, Marc-Antoine Ledieu specialized in digital law and BtoB contractual engineering.
His areas of practice cover the law of software and SaaS services, databases, personal data, the web, electronic communications and encryption.
Since 1999, Marc-Antoine Ledieu has been teaching digital contract law in the Master 2 PRO "Digital Law" at the University of Paris II Panthéon-Assas.
Jean-Philippe Gaulier